|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
302 messages sorted by: [ author ] [ date ] [ thread ]
Starting: Fri May 01 2009 - 10:15:36 CDT
Ending: Fri May 29 2009 - 14:12:30 CDT
- (GET var 'id') BLIND SQL INJECTION EXPLOIT --Dog Pedigree Online Database v1.0.1-Beta -->
- (GET var 'member') BLIND SQL INJECTION EXPLOIT --FAMILY CONNECTIONS <= v1.9 -->
- (GET vars 'x' & 'y') ADMIN FUNCTION EXECUTION--Jorp v-1.3.05.09-->
- (POST var 'rating') BLIND SQL INJECTION--microTopic v1 Initial Release-->
- (whitepaper) Microsoft WPAD Technology Weaknesses [PTResearch Team]
- [ GLSA 200905-01 ] Asterisk: Multiple vulnerabilities
- [ GLSA 200905-02 ] Cscope: User-assisted execution of arbitrary code
- [ GLSA 200905-03 ] IPSec Tools: Denial of Service
- [ GLSA 200905-04 ] GnuTLS: Multiple vulnerabilities
- [ GLSA 200905-05 ] FreeType: Multiple vulnerabilities
- [ GLSA 200905-06 ] acpid: Denial of Service
- [ GLSA 200905-07 ] Pidgin: Multiple vulnerabilities
- [ GLSA 200905-08 ] NTP: Remote execution of arbitrary code
- [ GLSA 200905-09 ] libsndfile: User-assisted execution of arbitrary code
- [ MDVSA-2009:102 ] apache
- [ MDVSA-2009:103 ] udev
- [ MDVSA-2009:104 ] udev
- [ MDVSA-2009:105 ] memcached
- [ MDVSA-2009:106 ] libwmf
- [ MDVSA-2009:107 ] acpid
- [ MDVSA-2009:108 ] zsh
- [ MDVSA-2009:109 ] quagga
- [ MDVSA-2009:110 ] squirrelmail
- [ MDVSA-2009:111 ] firefox
- [ MDVSA-2009:111-1 ] firefox
- [ MDVSA-2009:112 ] ipsec-tools
- [ MDVSA-2009:113 ] cyrus-sasl
- [ MDVSA-2009:114 ] ipsec-tools
- [ MDVSA-2009:115 ] phpMyAdmin
- [ MDVSA-2009:116 ] gnutls
- [ MDVSA-2009:117 ] ntp
- [ MDVSA-2009:118 ] kernel
- [ MDVSA-2009:119 ] kernel
- [ MDVSA-2009:120 ] openssl
- [ MDVSA-2009:121 ] lcms
- [ MDVSA-2009:122 ] squirrelmail
- [ MDVSA-2009:123 ] opensc
- [Bkis-08-2009] Microchip MPLAB IDE Buffer Overflow Vulnerability
- [Bkis-09-2009] XSS vulnerability in 'Monitor_Bandwidth' - PRTG Traffic Grapher
- [DSECRG-09-034] Sun Glassfish Enterprise Server - Multiple Linked XSS vulnerabilies
- [DSECRG-09-038] Sun Glassfish Woodstock Project - Linked XSS Vulnerability
- [Full-disclosure] [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)
- [Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)
- [IMF 2009] 3rd Call - Deadline Extended
- [InterN0T] Achievo 1.3.4 - XSS Vulnerability
- [InterN0T] AdPeeps 8.5d1 - XSS and HTML Injection Vulnerabilities
- [InterN0T] AMember 3.1.7 - Multiple Vulnerabilities
- [oCERT-2009-001] Pango integer overflow in heap allocation size calculations
- [oCERT-2009-004] AjaxTerm session id collision
- [oCERT-2009-006] Android improper package verification when using shared uids
- [RT-SA-2009-001] IceWarp WebMail Server: Cross Site Scripting in Email View
- [RT-SA-2009-002] IceWarp WebMail Server: User-assisted Cross Site Scripting in RSS Feed Reader
- [RT-SA-2009-003] IceWarp WebMail Server: SQL Injection in Groupware Component
- [RT-SA-2009-004] IceWarp WebMail Server: Client-Side Specification of "Forgot Password" eMail Content
- [SecNiche WhitePaper ] - PDF Silent HTTP Form Repurposing Attacks
- [security bulletin] HPSBMA02348 SSRT080033 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code, Denial of Service (DoS)
- [security bulletin] HPSBMA02349 SSRT080043 rev.3 - HP OpenView Network Node Manager (OV NNM), Remote Unauthorized Access to Data
- [security bulletin] HPSBMA02374 SSRT080046 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)
- [security bulletin] HPSBMA02417 SSRT090031 rev.1 - HP Data Protector Express and HP Data Protector Express Single Server Edition (SSE), Local Denial of Service (DoS), Execution of Arbitrary Code
- [security bulletin] HPSBMA02419 SSRT090060 rev.1 - Insight Control Suite For Linux (ICE-LX) Multiple Remote Vulnerabilities In Nagios
- [security bulletin] HPSBMA02425 SSRT080091 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [security bulletin] HPSBMA02426 SSRT090053 rev.1 - HP System Management Homepage (SMH) for Linux and Windows Running PHP and OpenSSL, Remote Cross Site Scripting (XSS), Unauthorized Access
- [security bulletin] HPSBMA02427 SSRT090069 rev.1 - HP Remote Graphics Software (RGS) Sender Running Easy Login, Remote Unauthorized Access
- [security bulletin] HPSBMA02428 SSRT090048 rev.1 - HP System Management Homepage (SMH) for Linux and Windows, Remote Cross Site Scripting (XSS)
- [security bulletin] HPSBPI02398 SSRT080166 rev.3 - Certain HP LaserJet Printers, HP Color LaserJet Printers, and HP Digital Senders, Remote Unauthorized Access to Files
- [security bulletin] HPSBUX02366 SSRT080120 rev.2 - HPUX Running useradd(1M), Local Unauthorized Access
- [security bulletin] HPSBUX02429 SSRT090058 rev.1 - HP-UX Running Java, Remote Execution of Arbitrary Code and Other Vulnerabilities
- [SECURITY] [DSA 1784-1] New freetype packages fix arbitrary code execution
- [SECURITY] [DSA 1785-1] New wireshark packages fix several vulnerabilities
- [SECURITY] [DSA 1786-1] New acpid packages fix denial of service
- [SECURITY] [DSA 1787-1] New Linux 2.6.24 packages fix several vulnerabilities
- [SECURITY] [DSA 1787-1] New quagga packages fix denial of service
- [SECURITY] [DSA 1789-1] New php5 packages fix several vulnerabilities
- [SECURITY] [DSA 1790-1] New xpdf packages fix multiple vulnerabilities
- [SECURITY] [DSA 1791-1] New moin packages fix cross-site scripting
- [SECURITY] [DSA 1792-1] New drupal6 packages fix multiple vulnerabilities
- [SECURITY] [DSA 1793-1] New kdegraphics packages fix multiple vulnerabilities
- [SECURITY] [DSA 1794-1] New Linux 2.6.18 packages fix several vulnerabilities
- [SECURITY] [DSA 1795-1] New ldns packages fix arbitrary code execution
- [SECURITY] [DSA 1796-1] New libwmf packages fix denial of service
- [SECURITY] [DSA 1797-1] New xulrunner packages fix several vulnerabilities
- [SECURITY] [DSA 1798-1] New pango1.0 packages fix arbitrary code execution
- [SECURITY] [DSA 1799-1] New qemu packages fix several vulnerabilities
- [SECURITY] [DSA 1800-1] New Linux 2.6.26 packages fix several vulnerabilities
- [SECURITY] [DSA 1801-1] New ntp packages fix several vulnerabilities
- [SECURITY] [DSA 1802-1] New squirrelmail packages fix several vulnerabilities
- [SECURITY] [DSA 1802-2] New squirrelmail packages correct incomplete fix
- [SECURITY] [DSA 1803-1] New nsd packages fix denial of service
- [SECURITY] [DSA 1804-1] New ipsec-tools packages fix denial of service
- [SECURITY] [DSA 1805-1] New pidgin packages fix several vulnerabilities
- [SECURITY] [DSA 1806-1] New cscope packages fix arbitrary code execution
- [TKADV2009-006] libsndfile/Winamp VOC Processing Heap Buffer Overflow
- [TOOL] moth - vulnerable web application vmware
- [TZO-18-2009] Mcafee multiple evasions/bypasses (RAR, ZIP)
- [TZO-20-2009] AVG ZIP evasion / bypass
- [TZO-21-2009] Fprot CAB bypass / evasion
- [TZO-22-2009] Bitdefender generic evasion of heuristics (for PDF)
- [TZO-23-2009] Avira antivir generic evasion of heuristics (for PDF)
- [TZO-24-2009] Panda generic evasion (CAB)
- [TZO-25-2009] Panda generic evasion (TAR)
- [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)
- [TZO-27-2009] Firefox Denial of Service (Keygen)
- [TZO-28-2009] - Avira Antivir generic RAR,CAB,ZIP
- [USN-769-1] libwmf vulnerability
- [USN-770-1] ClamAV vulnerability
- [USN-771-1] libmodplug vulnerabilities
- [USN-772-1] MPFR vulnerability
- [USN-773-1] Pango vulnerability
- [USN-774-1] MoinMoin vulnerability
- [USN-775-1] Quagga vulnerability
- [USN-776-1] KVM vulnerabilities
- [USN-776-2] KVM regression
- [USN-777-1] Ntp vulnerabilities
- [WEB SECURITY] [TOOL] moth - vulnerable web application vmware
- about inactive account hijacking
- Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)
- Addonics NAS Adapter FTP Remote Denial of Service
- Advisory - Gmail/Google Doc PDF Repurposing Integrated Attacks - Cookie Hijacking / Stealing
- Arcade Trade Script XSS
- Armorlogic Profense Web Application Firewall 2.4 multiple vulnerabilities.
- Backdoor in com_rsgallery2 gallery extension for joomla
- BH USA CFP closing next Tuesday
- Bitweaver <= 2.6 /boards/boards_rss.php / saveFeed() remote code execution exploit
- BLIND SQL INJECTION exploit (GET var 'AlbumID')--RTWebalbum 1.0.462-->
- BLIND SQL INJECTION EXPLOIT--TemaTres 1.0.3-->
- BLIND SQL INJECTION--Leap CMS 0.1.4-->
- BugCON '09 has swine influenza!!
- CA20090126-01: CA Anti-Virus Engine Detection Evasion Multiple Vulnerabilities [Updated]
- CA20090429-01: CA ARCserve Backup Apache HTTP Server Multiple Vulnerabilities
- Call for Papers Hack.lu 2009
- Call For Papers – ACM CCS 2009 Workshops
- Changes : [TZO-17-2009]Trendmicro multiple bypass/evasions
- ChinaGames (CGAgent.dll) ActiveX Remote Code Execution Exploit
- Cisco Security Advisory: CiscoWorks TFTP Directory Traversal Vulnerability
- Claroline v.1.8.11 Cross-Site Scripting
- CONFidence 2009 trainings
- Coppermine Photo Gallery 1.4.21 Cross-Site Scripting
- CORE-2009-0109 - Multiple XSS in Sun Communications Express
- CORE-2009-0401 - StoneTrip S3DPlayers remote command injection
- COWON America jetCast 2.0.4.1109 (.mp3) local heap buffer overlow exploit
- DDIVRT-2009-25 IPsession SQL Injection Vulnerability
- DMXReady Registration Manager Arbitrary File Upload Vulnerability
- DotNetNuke ErrorPage.aspx Cross-Site Scripting Vulnerability
- Durzosploit v0.1 alpha
- ecshop 2.6.2
- eggdrop/windrop remote crash vulnerability
- EUSecWest 2009 (May27/28) London Agenda and PacSec 2009 (Nov 4/5) Tokyo CFP deadline: June 1 2009
- Exploiting IE8 UTF-7 XSS Vulnerability using Local Redirection
- Five days left to find the oldest data loss incident
- FormMail 1.92 Multiple Vulnerabilities
- FUD Forum < 2.7.1 PHP code injection vurnelability
- Fwd: [Full-disclosure] IIS6 + webdav and unicode rides again in 2009
- Grabit <= 1.7.2 beta 3 NZB file parsing stack overflow
- Hardening OSX against CVE-2008-5353
- HTTP Parameter Pollution
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint 4.2 Conversion Filter Heap Corruption Vulnerability
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint 4.2 Conversion Filter Stack Buffer Overflow Vulnerability
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint 4.2 Conversion Filter Stack Overflow
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint Build List Memory Corruption Vulnerability
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint Integer Overflow Vulnerability
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint Notes Container Heap Corruption Vulnerability
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint PPT 4.0 Importer Multiple Stack Buffer Overflow Vulnerabilities
- iDefense Security Advisory 05.12.09: Microsoft PowerPoint PPT95 Import Multiple Stack Buffer Overflow Vulnerabilities
- iDefense Security Advisory 05.14.09: Apple Mac OS X xnu Kernel workqueue_additem/workqueue_removeitem Index Validation Vulnerability
- iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Multiple Integer Overflow Vulnerabilities
- iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Multiple Spreadsheet Buffer Overflow Vulnerabilities
- iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Spreadsheet Buffer Overflow Vulnerability
- iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Spreadsheet Integer Overflow Vulnerability
- iDefense Security Advisory 05.20.09: IBM AIX libc MALLOCDEBUG File Overwrite Vulnerability
- INSECURE COOKIE HANDLING VULNERABILITIES --Dog Pedigree Online Database v1.0.1-Beta-->
- Insufficient Authentication vulnerability in Acer notebooks
- Insufficient Authentication vulnerability in Asus notebook
- LayerOne 2009 - Final Announcement
- LxBlog
- maxcms2.0 creat new admin exploit
- MULTIPLE CODE INJECTION VULNERABILITIES --TUENTI--SPAIN-->
- MULTIPLE REMOTE SQL INJECTION VULNERABILITIES---MIM:InfiniX v1.2.003--->
- MULTIPLE REMOTE VULNERABILITIES --MiniTwitter<=v0.3-Beta-->
- MULTIPLE REMOTE VULNERABILITIES --my-colex 1.4.2-->
- MULTIPLE REMOTE VULNERABILITIES --my-Gesuad 0.9.14-->
- MULTIPLE REMOTE VULNERABILITIES --Small Pirates v-2.1-->
- MULTIPLE REMOTE VULNERABILITIES--TemaTres 1.0.3-->
- MULTIPLE SQL INJECTION VULNERABILITIES --Flash Quiz Beta 2-->
- MULTIPLE SQL INJECTION VULNERABILITIES --Joomla Component 'Boy Scout Advancement' <= v-0.3 (com_bsadv)-->
- MULTIPLE SQL INJECTION VULNERABILITIES --MiniTwitter v0.2-Beta-->
- MULTIPLE SQL INJECTION VULNERABILITIES --Shutter v-0.1.1-->
- multiple vendor - PF NULL pointer dereference
- Multiple vulnerabilities in several ATEN IP KVM Switches
- MULTPLE REMOTE VULNERABILITIES --ProjectCMS v-1.1 Beta-->
- n.runs-SA-2009.001 - OS X CFNetwork advisory
- Namad Cms Remote File Download
- NetDecision TFTP Server 4.2 TFTP Directory Traversal
- New Browser Security Paper: Why Silent Updates Boost Security
- New paper: Understanding Microsoft's KB971492 IIS WebDAV Vuln
- New WebApp security paper: Anti-fraud Image Solutions
- Novell Groupwise fails to properly sanitize emails.
- Novell GroupWise Internet Agent Remote Buffer Overflow Vulnerabilities
- Novell GroupWise Web Access Multiple XSS
- PAPER: Dynamic Data Flow Analysis via Virtual Code Integration (aka The SpiderPig case)
- PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs
- Persistent XSS in Kayako Support Suite
- PHP Nuke v.8.0 (referer) SQL Injection
- Pinnacle Studio 12 "Hollywood FX Compressed Archive" (.hfz) directory traversal vulnerability poc
- POC & exploit for Apache mod_rewrite off-by-one
- registration open!
- rPSA-2009-0084-1 kernel
- rPSA-2009-0086-1 postgresql postgresql-contrib postgresql-server
- rPSA-2009-0091-1 cyrus-sasl cyrus-sasl-server
- rPSA-2009-0092-1 ntp ntp-utils
- rPSA-2009-0095-1 tshark wireshark
- SEC Consult SA-20090525-0 :: Nortel Contact Center Manager Server Authentication Bypass Vulnerability
- SEC Consult SA-20090525-1 :: Nortel Contact Center Manager Server Password Disclosure Vulnerability
- SEC Consult SA-20090525-2 :: SonicWALL Global Security Client Local Privilege Escalation Vulnerability
- SEC Consult SA-20090525-3 :: SonicWALL Global VPN Client Local Privilege Escalation Vulnerability
- SEC Consult SA-20090525-4 :: SonicOS Format String Vulnerability
- Secunia Research: Garmin Communicator Plug-In Domain Locking Security Bypass
- Secunia Research: IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows
- Secunia Research: Microsoft PowerPoint Atom Parsing Buffer Overflows
- Secunia Research: Sun Solaris "sadmind" Buffer Overflow Vulnerability
- Secunia Research: Sun Solaris "sadmind" Integer Overflow Vulnerability
- Security Advisory: Banks in Australia
- Security tools list: First Version
- Serena Dimensions CM Desktop Client does not validate the server SSL certificate
- Shakacon Security Conference - Trainers and Speakers Finalized
- SonicWALL SSL-VPN Appliance Format String Vulnerability
- speaker Bill Blunden on Rootkits...
- SQL INJECTION VULNERABILITIES--ST-Gallery version 0.1 alpha-->
- Sun IDM Arbitrary Commands Execution Vulnerability
- Survey: "MIME/Content-Type-Sniffing" Issues in Image Uploads in Forum Scripts
- Syhunt: A-A-S (Application Access Server) Multiple Security Vulnerabilities
- Symantec Fax Viewer Control v10 (DCCFAXVW.DLL) remote buffer overflow exploit
- The security tools list, new version with more than 200 new tools!
- TinyWebGallery <= 1.7.6 LFI / Remote Code Execution Exploit
- Universal XSS in all Google Services
- Update: [TZO-15-2009] Aladdin eSafe generic bypass - Forced release
- User options changer (SQLi) EXPLOIT --Bigace CMS -stable release- 2.5-->
- USER OPTIONS CHANGER EXPLOIT --MiniTwitter v0.2-Beta+->
- Vanilla v.1.1.7 Cross-Site Scripting
- VMSA-2009-0007 VMware Hosted products and ESX and ESXi patches resolve security issues
- Vpopmail/QmailAdmin User's Quota Multiple Integer Overflows
- W3af ninja training class in NYC
- Whitepaper
- WinAppDbg module v1.1 is out!
- xcon2009 is coming
- ZDI-09-019: Microsoft Office PowerPoint OutlineTextRefAtom Parsing Memory Corruption Vulnerability
- ZDI-09-020: Microsoft Office PowerPoint Notes Container Heap Overflow Vulnerability
- ZDI-09-021: Apple QuickTime PICT Unspecified Tag Heap Overflow Vulnerability
- ZDI-09-022: Apple Safari Malformed SVGList Parsing Code Execution Vulnerability
- ZDI-09-023: Apple OS X ATSServer Compact Font Format Parsing Memory Corruption Vulnerability
- “Cross-Site Scripting” vulnerability in MyBB 1.4.5
Last message date: Fri May 29 2009 - 14:12:30 CDT
Archived on: Fri May 29 2009 - 14:12:31 CDT
302 messages sorted by: [ author ] [ date ] [ thread ]
gmail.com